Issue
- Prevent the loss of internet connectivity on client computers due to firewall settings when deploying ESET Endpoint Security
- Add the IP range/subnets to the trusted zone before deploying ESET Endpoint Security
- Allow ping/RDP/internal network communication
- Edit or disable Firewall rules in ESET PROTECT or ESET PROTECT On-Prem
Solution
Add the IP range/subnets to the trusted zone before deploying ESET Endpoint Security
To resolve your RDP/ping not working issue, configure the trusted zone with the IPv4 and Remote IP addresses, ranges, masks, and subnets (for example, any VPN networks and all subnets inside your network).
-
Click Policies, select the desired Built-in policy and then click Actions → New Policy.
-
Type a name for the new policy into the Name field. The Description field is optional.
-
Click Settings → Protections → Network access protection and click Edit next to IP sets.
-
Select Trusted zone and click Edit.
-
In the Remote computer address field, add your IPv4 and Remote IP addresses, ranges, masks, and subnets (for example, any VPN networks and all subnets inside your network), and then click Save.
-
Click Assign → Assign. Read more about assigning a policy to a client or a group.
-
Select the check boxes next to separate clients or next to each static or dynamic group you want this policy assigned to and click OK.
-
Click Finish to save your policy. When the system checks into ESET PROTECT or ESET PROTECT On-Prem with the new settings, you can deploy ESET Endpoint Security to your network.
Edit or disable Firewall rules in ESET PROTECT or ESET PROTECT On-Prem
-
Open ESET PROTECT On-Prem in your web browser and log in.
-
Click Policies, select the desired Built-in policy and then click Actions → New Policy.
-
Type a name for the new policy into the Name field. The Description field is optional.
-
Click Settings → Protections → Network access protection, expand Firewall, and click Edit next to Rules.
-
Click More filters.
-
Select the check box next to Hide built-in (pre-defined) rules and click Apply.
-
Deselect the check boxes next to Block incoming NETBIOS requests and Block incoming RPC requests and click Save.
-
Click Assign → Assign. Read more about assigning a policy to a client or a group.
-
Select the check boxes next to separate clients or next to each static or dynamic group you want this policy assigned to and click OK.
-
Click Finish to save your policy. When the system checks into ESET PROTECT or ESET PROTECT On-Prem with the new settings, you can deploy ESET Endpoint Security to your network.